Posted by theharmonyguy in OpenSocial | 3 comments
RockYou’s Emote on Plaxo
Date: Friday, November 2, 2007
Initial hack: 45 minutes
Vulnerabilities:
- Able to change current Emote status for any user
- Able to access Emote history and current status for any user
- Able to insert HTML, including JavaScript, into Emote pages
Coverage: TechCrunch
Progress: Plaxo has removed Emote from their whitelist. As of Nov. 6, Emote remains unpatched.
Trackbacks/Pingbacks
- OpenSocial Hacked Again - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
- Ajax Girl » Blog Archive » OpenSocial Hacked Again - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
- NexGen Technology Blog » OpenSocial Hacked Again - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
- OpenSocial Hacked Again | GOSSIP - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
- OpenSocial Hacked Again at Geekstr - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...


Hi HarmonyGuy,
Well done! Who better than you would be able to build a wonderful app for Facebook and OpenSocial.
If you’re interested, you can contact me by email, I’ve got an app idea and ‘m searching for a developer.
Best regards,
Jean-Marie
You are obviously a very skilled developer. I am looking to build applications for my website for facebook and open social networking. Looking forward to hearing from you soon.
now it’s at myspace x.x.. Heroes apps